Skip to content

Conversation

@robmry
Copy link
Contributor

@robmry robmry commented Oct 6, 2025

- What I did

Rather than requiring iptables-nft for RHEL10/Fedora43 and iptables for other versions and CentOS, use "(iptables-nft or iptables)".

Newer OSs will have iptables-nft, if anything - and making people install iptables-legacy isn't great if it's not needed.

(When neither dependency is available - dnf seems to install both if they're available, but doesn't mind if it can only find one of them. And, if one's already installed, it doesn't try to install the other.)

- Description for the changelog

Rather than requiring iptables-nft for RHEL10/Fedora43 and iptables
for other versions and CentOS, use "(iptables-nft or iptables)".

Signed-off-by: Rob Murray <rob.murray@docker.com>
@robmry robmry marked this pull request as ready for review October 6, 2025 18:16
@robmry robmry requested a review from vvoland October 6, 2025 18:16
Copy link
Contributor

@vvoland vvoland left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

For a follow up, I think we could do the same (iptables | nftables) for debs, right?

iptables,
nftables,

@vvoland vvoland merged commit 80bb3f7 into docker:master Oct 7, 2025
38 checks passed
@robmry
Copy link
Contributor Author

robmry commented Oct 7, 2025

For a follow up, I think we could do the same (iptables | nftables) for debs, right?

I looked in to that, it doesn't seem to be needed because on Debian the iptables dependency ends up installing iptables-nft.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants